Malware

PWS:MSIL/Mintluks!pz (file analysis)

Malware Removal

The PWS:MSIL/Mintluks!pz is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What PWS:MSIL/Mintluks!pz virus can do?

  • CAPE extracted potentially suspicious content
  • The binary likely contains encrypted or compressed data.
  • Authenticode signature is invalid
  • Anomalous .NET characteristics
  • Deletes executed files from disk

How to determine PWS:MSIL/Mintluks!pz?


File Info:

name: 1495456F991B09103B20.mlw
path: /opt/CAPEv2/storage/binaries/0c0f6977efbfabff06f35c4a7c53ad39aadb11c2532b8710bfe1e47d2f3e366e
crc32: 22FD36AA
md5: 1495456f991b09103b200777d950fd62
sha1: 6e61ade3549bc2c3b3e5463af334c9a4fa3e1857
sha256: 0c0f6977efbfabff06f35c4a7c53ad39aadb11c2532b8710bfe1e47d2f3e366e
sha512: 531a973011ec5d58a01c404d4699bd60d68bfcd3a3254c1da68d836e9c56d0dacc22b6be55eec0721095cfe430f46e50c08c154d9c5dcfef2d57d7c12034c3ca
ssdeep: 1536:2WtHFo6638dy0MochZDsC8Kl/99Z242UdIAkn3jKZPjoYaoQtw9/q1kr:2WtHFo53Ln7N041Qqhgw9/p
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T11C73CF15AF410D08E7F80B3205DC76DA06BFFB4ED67053CA5D1E69A82B37B9099E0768
sha3_384: 3830df1861dc6ba021bba665277ab56b4113958f4977969887ef1ba09731163bab9e8c762192d4fcab96981f1ce19c8c
ep_bytes: ff250020400000000000000000000000
timestamp: 2023-11-09 20:48:11

Version Info:

Translation: 0x0000 0x04b0
FileDescription:
FileVersion: 0.0.0.0
InternalName: tmp9419.tmp.exe
LegalCopyright:
OriginalFilename: tmp9419.tmp.exe
ProductVersion: 0.0.0.0
Assembly Version: 0.0.0.0

PWS:MSIL/Mintluks!pz also known as:

BkavW32.FamVT.Deb123TTc.Worm
LionicTrojan.Win32.Mintluks.4!c
MicroWorld-eScanTrojan.MSIL.Agent.FOZ
FireEyeGeneric.mg.1495456f991b0910
CAT-QuickHealTrojan.Generic.TRFH959
SkyhighBehavesLike.Win32.Generic.lc
ALYacTrojan.MSIL.Agent.FOZ
MalwarebytesGeneric.Malware.AI.DDS
VIPRETrojan.MSIL.Agent.FOZ
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0056ae4d1 )
BitDefenderTrojan.MSIL.Agent.FOZ
K7GWTrojan ( 005690671 )
CrowdStrikewin/malicious_confidence_100% (W)
VirITTrojan.Win32.Dnldr7.DCEA
SymantecMSIL.Packed.13
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Kryptik.MSS
APEXMalicious
ClamAVWin.Malware.Avlj-9877624-0
KasperskyHEUR:Trojan.Win32.Generic
AlibabaTrojanPSW:MSIL/Mintluks.7986d3af
NANO-AntivirusTrojan.Win32.Generic.euparm
ViRobotTrojan.Win.Z.Mintluks.80384.IYN
RisingBackdoor.njRAT!1.AE81 (CLASSIC)
TACHYONTrojan/W32.DN-Agent.80384.BE
EmsisoftTrojan.MSIL.Agent.FOZ (B)
F-SecureTrojan.TR/Dropper.Gen
DrWebTrojan.DownLoader7.54184
ZillyaTrojan.AgentGen.Win32.91
TrendMicroTROJ_MINTLUKS.SM
Trapminemalicious.high.ml.score
SophosMal/MSIL-TU
IkarusTrojan.Dropper
JiangminTrojan/Generic.ujws
GoogleDetected
AviraTR/Dropper.Gen
VaristW32/MSIL_Kryptik.AZD.gen!Eldorado
Antiy-AVLTrojan/Win32.AGeneric
Kingsoftmalware.kb.c.1000
MicrosoftPWS:MSIL/Mintluks!pz
XcitiumTrojWare.MSIL.Mintluks.JJC@7axq6t
ArcabitTrojan.MSIL.Agent.FOZ
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataMSIL.Trojan.PSE.108SVUU
CynetMalicious (score: 100)
AhnLab-V3Trojan/Win32.Mintluks.R344592
McAfeeGenericRXCL-LB!1495456F991B
MAXmalware (ai score=84)
DeepInstinctMALICIOUS
VBA32OScope.TrojanDropper.MSIL.Mintluks
Cylanceunsafe
PandaTrj/CI.A
TrendMicro-HouseCallTROJ_MINTLUKS.SM
TencentTrojan.MSIL.Zilla.ha
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Kryptik.JJC!tr
BitDefenderThetaGen:NN.ZemsilF.36792.em0@aKbr81n
AVGWin32:Agent-AVLJ [Trj]
Cybereasonmalicious.3549bc
AvastWin32:Agent-AVLJ [Trj]

How to remove PWS:MSIL/Mintluks!pz?

PWS:MSIL/Mintluks!pz removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment